Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=bytemek.co.il
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 04, 2025
Valid Until
March 04, 2026 88 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
73:47:C4:C5:58:7E:6F:FA:1B:15:3E:63:9A:08:13:A3:BC:DE:70:37:38:2A:D9:99:ED:0F:51:39:73:85:BB:80
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
payshare.app

Other domains in certificate

11521666.peerly.app
addtothestory.com
app.amsable.com
web.apptopdf.com
link.aq3d.com
beeletter.app
beltorion.com
qr.bondigital.io
dev.chainsure.de
bytemek.co.il
everyonesnft.theclub.com.hk
mobile.comodohotel.app
coyanservices.online
cycraft.co
www.datboyent.com
app.dcoupon.com
www.dinereel.com
eco-drive.app
www.elien.app
elikellendonk.ca
emmanueldgz.com
p.esteam.rocks
hubcity.estudio.app
comercialesmsol.estudiocactus.com
evonweddings.com
expeditions.gle
ministrohales.smartroad.eye3.cl
findout1.com
etikabunga.finlup.id
foxso.games
freshblends.cloud
link.stg.genkifit.app
getmille.com
godwincodes.com
gottayoga.app
www.grevian.org
h2ocoach.app
hermiso.my
hex5.app
dev.multi-page.holu.com.br
idavision.tech
link.investall.app
js.ipcom.ai
jitsu.ninja
journeymapper.app
escaperoom.jwzoom.games
koftafusion.com
kubalatransport.pl
ladyboys.app
leonelcaschetto.com
lina.pictures
puzsq-dev-lhbvc.logicpuzzle.app
link2.m3pay-qa.com
evidnt.madhive.com
www.meetandmatch.golf
milkbot.com
dev.geekbites.move4mobile.io
www.mtsart.com
mypilas.com.br
www.naples125.com
advisor.netlaw.com
pap.nominandum.com
nullyland.com
odinn.app
oscarbolivarphoto.com
www.paviloma.fr
personas.de
www.pixelb.xyz
app.prtex.de
blendargout.order.pulp.eu
quickerflow.com
www.rlzim.com
roamlabs.io
rosalbas.co.uk
sabeomnim.app
schmick.app
www.scrumlounge.app
calq.seel.page
embed.seens.io
go.sheech.app
shivansh.ca
sitch.app
app.smartcrmapp.com
soul-bikes.es
symplepos.app
taskio.app
thewisdomcircle.org
app.thisisdenizen.com
tnnl.app
tonepickplus.com
chaos.umiremix.com
hi.unexbank.ua
www.visualiser.app
www.webbysfromhome.com
wsheng.me
xappstudio.dev
kz-bible.youngdigital.me
renshuu.zacherl.dev
merchant.zippelin.com